Home / malwarePDF  

Trojan:Java/Classloader.Z


First posted on 16 June 2010.
Source: SecurityHome

Aliases :

Trojan:Java/Classloader.Z is also known as Trojan.Java.ClassLoader.ap (BitDefender), Exploit.Java.8 (Dr.Web), Java/TrojanDownloader.Agent.NAI (ESET), Trojan-Downloader.Java.Agent.ch (Kaspersky), Java/Byteverify.B (Norman), Troj/Agent-MNX (Sophos).

Explanation :

Trojan:Java/Classloader.Z is the detection for Java class malware that attempts to exploit the Microsoft Windows VM to download and execute an arbitrary file from a predefined Web site. Computers with the Microsoft Security Update MS03-011 installed are not affected by this malware.
Top

Trojan:Java/Classloader.Z is the detection for Java class malware that attempts to exploit the Microsoft Windows VM to download and execute an arbitrary file from a predefined Web site. Computers with the Microsoft Security Update MS03-011 installed are not affected by this malware. InstallationTrojan:Java/Classloader.Z may be encountered when visiting a malicious Web page. Payload Downloads arbitrary files When loaded, Trojan:Java/Classloader.Z attempts to exploit a vulnerability resolved by the Microsoft Security Bulletin MS03-011. If successful, the malware connects to a predefined Web site to download and execute an arbitrary file. The file is saved into the Windows Temporary Files folder. The exploit used by that Trojan:Java/Classloader.Z cannot be executed in computers in which Microsoft Security Bulletin MS03-011 is installed.

Analysis by Rodel Finones

Last update 16 June 2010

 

TOP